mailin[.]goteal[.]io
mailin.goteal.io — Неперевірений. Уособлення бренду: Bancolombia; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 83/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain mailin.goteal.io has been identified as a generic phishing platform, designed to deceive users into disclosing sensitive credentials or executing unauthorized transactions. As of the latest assessment, the domain is confirmed offline, though prior activity suggests it was actively utilized in phishing campaigns targeting a broad range of victims without a specific brand impersonation focus. Analysis indicates the infrastructure was likely employed for credential harvesting or redirect-based attacks, though no singular brand or service was consistently mimicked during its operational period.
Technical indicators reveal the domain was flagged by 9 of 95 security vendors on VirusTotal, reflecting a high-confidence detection rate. It was registered through GoDaddy.com, LLC on June 28, 2016, and resolved to the IP address 52.44.87.47, hosted on Amazon Web Services (AWS) EC2 infrastructure in the us-east-1 region. The domain appears on at least one security blocklist, further corroborating its malicious classification. Historical DNS records and passive DNS analysis suggest the IP has been associated with multiple transient phishing domains, a common tactic to evade detection and maintain operational agility.
Current status confirms the domain has been taken offline, though residual risk remains due to the potential for reactivation or migration to alternative infrastructure. Organizations are advised to implement proactive measures, including blocking the domain and its associated IP at the network perimeter, updating endpoint protection rules to include the domain in deny lists, and monitoring for related indicators of compromise. Security teams should also review logs for prior interactions with the domain or IP, particularly in cases where users may have been exposed to phishing attempts. Given the domain's age and registration history, further investigation into related infrastructure is recommended to identify potential linked threats.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of mailin.goteal.io · checked Mar 24, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога